linkedin-content

Warn

Audited by Gen Agent Trust Hub on Aug 7, 2026

Risk Level: MEDIUMEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the 'belt-sh/cli' tool using 'npx' and references an external installation guide hosted at 'https://raw.githubusercontent.com/inference-sh/skills/refs/heads/main/cli-install.md'.
  • [EXTERNAL_DOWNLOADS]: It encourages the addition of further skills from the 'inference-sh/skills' repository using the 'npx skills add' command.
  • [COMMAND_EXECUTION]: The skill utilizes the 'belt' CLI to execute various remote applications, including 'tavily/search-assistant' for research and 'falai/flux-dev-lora' for image generation.
  • [PROMPT_INJECTION]: The skill exhibits an indirect prompt injection surface as it ingests untrusted data from external research tools (via 'tavily/search-assistant') without explicit boundary markers or sanitization logic, although this is considered a low-severity risk in this context.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 7, 2026, 06:32 PM
Security Audit — agent-trust-hub — linkedin-content